NA - CVE-2024-53842 - In cc_SendCcImsInfoIndMsg of...
In cc_SendCcImsInfoIndMsg of cc_MmConManagement.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution...
NA - CVE-2025-22275 - iTerm2 3.5.6 through 3.5.10 before 3.5.11...
iTerm2 3.5.6 through 3.5.10 before 3.5.11 sometimes allows remote attackers to obtain sensitive information from terminal commands by reading the /tmp/framer.txt file. This can occur for certain...
Medium - CVE-2024-12132 - The WP Job Portal – A Complete Recruitment...
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.2.4...
NA - CVE-2024-9138 - Moxa’s cellular routers, secure routers, and...
Moxa’s cellular routers, secure routers, and network security appliances are affected by a high-severity vulnerability, CVE-2024-9138. This vulnerability involves hard-coded credentials, enabling...
NA - CVE-2024-9140 - Moxa’s cellular routers, secure routers, and...
Moxa’s cellular routers, secure routers, and network security appliances are affected by a critical vulnerability, CVE-2024-9140. This vulnerability allows OS command injection due to improperly...
Medium - CVE-2024-41780 - IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0...
IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0 could could allow a physical user to obtain sensitive information due to not masking passwords during entry.
NA - CVE-2024-48814 - SQL Injection vulnerability in Silverpeas 6.4.1...
SQL Injection vulnerability in Silverpeas 6.4.1 allows a remote attacker to obtain sensitive information via the ViewType parameter of the findbywhereclause function
NA - CVE-2024-55078 - An arbitrary file upload vulnerability in the...
An arbitrary file upload vulnerability in the component /adminUser/updateImg of WukongCRM-11.0-JAVA v11.3.3 allows attackers to execute arbitrary code via uploading a crafted file.
Medium - CVE-2024-5591 - IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0...
IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could...